tgindex
CloudSec Wine

All about cloud security Contacts: @AMark0f @dvyakimov About DevSecOps: @sec_devops

Последний пост
14 авг.
Последнее чтение
15 авг.
Постов за неделю
5
Всего постов
55
Тип
открытый
Язык
und
Категория
Новости и СМИ (по похожим)
В каталоге с
12 авг.
Подписчики
2 259
+2 за 2 дн.
Сутки
0
0,00%
Неделя
 
Месяц
 
Просмотров на пост
286
40 постов
Вовлечённость
12,7%
к подписчикам
Постов в день
0,7
всего 55
Упоминаний
2
каналов
Охват размещения
оценка
1/24сутки в ленте
170
1/48двое суток
194
1/72трое суток
210

Оценка по просмотрам недавних постов: пост набирает почти всё за первые сутки.

Посты

  • 🔶 HIPAA Security Rule on AWS AWS released a whitepaper guiding covered entities and business associates on implementing HIPAA Security Rule Technical Safeguards on AWS, covering access control, audit, MFA, encryption, and 2025 NPRM proposed changes, with shared responsibility mapping and ePHI architecture guidance. https://aws.amazon.com/ru/blogs/security/hipaa-security-rule-on-aws-technical-safeguards-implementation-and-readiness-guidance #aws

  • 🔴 Cloud CISO Perspectives: Why AI Threat Defense is the new boardroom baseline Google Cloud CISO Chris Betz argues that AI-native threat defense is now a board-level requirement. Boards should govern five areas: business enablement, remediation cycle speed, platform consolidation, contextual vulnerability prioritization, and AI safety policy to enable secure, AI-driven business agility. https://cloud.google.com/blog/products/identity-security/cloud-ciso-perspectives-why-ai-threat-defense-is-the-new-boardroom-baseline #gcp

  • 👩‍💻 CosmosEscape: Taking Over Every Azure Cosmos DB Wiz Research found CosmosEscape, a critical vulnerability in Azure Cosmos DB's Gremlin API enabling sandbox escape via .NET reflection. Attackers could obtain a platform-wide Cosmos Master Key granting full read/write access to any customer database and enumeration of all accounts. https://www.wiz.io/blog/cosmosescape-taking-over-every-database-in-azure-cosmos-db #azure

  • 🤖 Before the first prompt: Code execution paths in trusted coding-agent projects Trusted coding-agent projects can execute repository-controlled code before the first user prompt via MCP server configs or PATH hijacking in .claude/settings.json. Developers should treat project trust like running an arbitrary setup script. https://securitylabs.datadoghq.com/articles/coding-agent-project-trust-code-execution-before-first-prompt #AI

  • 🔶 Investigating Persistence Mechanisms in AWS Rapid7 Labs details four AWS persistence techniques used by attackers: rogue IAM user creation, backdoored assume role policies granting external account access, malicious Lambda functions provisioning privileged users, and federated user sessions that survive key rotation. Includes LEQL detection queries and remediation steps. https://www.rapid7.com/blog/post/dr-investigating-aws-persistence-mechanisms #aws

  • видео или голосовое, без подписи

  • 🤖 AI Worming through Word A coordinated disclosure with MSRC demonstrating a document-borne AI worm in Microsoft Copilot for Word: hidden XPIA prompts in source documents cause Copilot to alter generated content and self-propagate the malicious instructions into downstream documents. https://enklypesalt.com/posts/context-collapse-part3-ai-worming-through-word #AI

  • 🤖 A Security Analysis of Amazon S3 Vectors and Its Use in LLM Retrieval Pipelines An analysis of the security model of Amazon S3 Vectors and of the considerations that arise when it is used as the retrieval layer for LLM applications: access control scope, input validation, metadata integrity, and audit coverage. https://www.offensai.com/blog/amazon-s3-vectors-security-llm-rag-poisoning #AI

  • 🤖 Anatomy of a Frontier Lab Agent Intrusion: A Technical Timeline of the July 2026 Incident A companion technical writeup to HunggingFace's incident disclosure from last week. This post walks through how the intrusion actually worked: the two initial-access vectors, how the agent pivoted and moved laterally, representative examples of the commands that were run and how they investigated with GLM 5.2. https://huggingface.co/blog/agent-intrusion-technical-timeline #AI

  • видео или голосовое, без подписи

  • 🤖 Least privilege for AI agents: Identity, access, and tool binding AI agents acting as autonomous multi-system actors require dedicated managed identities, least-privilege task-scoped RBAC, explicit tool allowlists, JIT time-limited entitlements, downstream re-authorization per call, and end-to-end audit logs capturing identity, role, scope, and correlation IDs. https://www.microsoft.com/en-us/security/blog/2026/07/16/least-privilege-for-ai-agents-identity-access-and-tool-binding #AI

  • 🤖 Inside the OpenClaw Ecosystem: What Happens When AI Agents Get Credentials to Everything Permiso researchers deployed an AI agent (Rufio) into the OpenClaw ecosystem and found active malware campaigns in its unvetted skill marketplace (ClawHub), credential-harvesting skills with 377+ downloads, C2 infrastructure, and prompt injection attacks targeting agents holding plaintext credentials to email, Slack, and file systems. https://permiso.io/blog/inside-the-openclaw-ecosystem-ai-agents-with-privileged-credentials #AI

  • 🤖 New Study Identifies 53 Slopsquatting Targets Across 5 Frontier LLMs A study of ~200,000 LLM responses found 5 frontier models (Claude, GPT, Gemini, DeepSeek) hallucinate nonexistent package names at 4.62-6.10%, with 53 shared fictitious names on PyPI/npm still registrable and exploitable via slopsquatting attacks. https://socket.dev/blog/slopsquatting-targets-across-frontier-llms #AI

  • видео или голосовое, без подписи

  • 🔶 Introducing the Amazon GuardDuty investigation agent: on-demand AI-powered threat assessment Amazon GuardDuty investigation agent (public preview) uses AI to auto-investigate GuardDuty security findings, reducing investigation time from hours to minutes. It returns risk levels, confidence scores, MITRE ATT&CK mappings, and remediation steps via console, CLI, API, or AWS MCP server. https://aws.amazon.com/ru/blogs/security/introducing-the-amazon-guardduty-investigation-agent-on-demand-ai-powered-threat-assessment #aws

  • видео или голосовое, без подписи

  • 🤖 Delegated authority, running locally: Give an agent on your machine an identity you can trust A reference architecture for giving a locally-running AI agent a trustworthy, auditable identity, without long-lived credentials on disk, including a structural defense against prompt injection built into the protocol layer. https://1password.com/blog/ai-agent-identity-delegated-local #AI

  • 🤖 CISO's guide to agentic AI Anthropic's Deputy CISO shares a four-question framework for assessing agentic AI risk, and walks through controls that keep agent deployments bounded and auditable. https://claude.com/blog/ciso-guide-to-agentic-ai #AI

  • видео или голосовое, без подписи

  • 🔶 Introducing Claude apps gateway for AWS Amazon announced the Claude apps gateway for AWS, a self-hosted control plane that gives organizations a single point of control over access, cost, and policy for Claude Code and Claude Desktop. https://aws.amazon.com/ru/blogs/machine-learning/introducing-claude-apps-gateway-for-aws #aws